Firefox Vulnerability: Iterator Stop Condition Missing in Built-in Profiler

CVE-2024-4775
Currently unrated 🤨

Key Information

Vendor
Mozilla
Status
Firefox
Vendor
CVE Published:
14 May 2024

Summary

An iterator stop condition was missing when handling WASM code in the built-in profiler, potentially leading to invalid memory access and undefined behavior. *Note:* This issue only affects the application when the profiler is running. This vulnerability affects Firefox < 126.

Affected Version(s)

Firefox < 126

Timeline

  • Vulnerability published.

  • Vulnerability Reserved.

Collectors

NVD DatabaseMitre Database

Credit

Lukas Bernhard
.